Lucene search

K
cvelistMozillaCVELIST:CVE-2015-0799
HistoryApr 08, 2015 - 10:00 a.m.

CVE-2015-0799

2015-04-0810:00:00
mozilla
www.cve.org
4

AI Score

9.3

Confidence

High

EPSS

0.001

Percentile

50.8%

The HTTP Alternative Services feature in Mozilla Firefox before 37.0.1 allows man-in-the-middle attackers to bypass an intended X.509 certificate-verification step for an SSL server by specifying that server in the uri-host field of an Alt-Svc HTTP/2 response header.

AI Score

9.3

Confidence

High

EPSS

0.001

Percentile

50.8%